Назад
Company hidden
6 часов назад

Senior Security Engineer, Application (Application Security)

96 700 - 145 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Security Engineer, Application (Application Security): Managing and improving application security technologies and processes across physical datacenters and cloud environments with an accent on vulnerability scanning, DevSecOps, threat modeling, and secure software development. Focus on automating security controls, triaging CI/CD issues, assessing application risks, and measuring security effectiveness through KRIs and scorecards.

Location: Hybrid in-office role for Virginia residents in Richmond or Lynchburg, Virginia; in-office days are Tuesday, Wednesday, and Thursday during core EST business hours, 9am–5pm.

Salary: $96,700–$145,000 national annual base range, plus eligibility for a performance-based bonus incentive plan.

Company

hirify.global provides guidance, products, and services to help families navigate aging and long-term care.

What you will do

  • Manage application vulnerability scanning technologies, application security testing platforms, and cloud security tooling.
  • Design secure applications with business stakeholders, assess security weaknesses, and coordinate issue remediation.
  • Identify, assess, respond to, and remediate information security risks across physical datacenter and cloud environments.
  • Orchestrate and automate security technologies and platforms, including day-to-day lifecycle management.
  • Create actionable security posture reports and implement key risk indicators and security scorecards.
  • Serve as the application security subject-matter expert for risk assessments, critical issues, and CI/CD triage.

Requirements

  • 5+ years of experience in security engineering, including application security and DevSecOps.
  • Degree in Computer Science or a related field.
  • Experience with vulnerability scanning, AST platforms, cloud security tooling, threat modeling, penetration testing, and web application assessment.
  • Cloud experience with AWS, Azure, or GCP, plus knowledge of Infrastructure as Code and Policy as Code concepts.
  • Experience implementing secure software development lifecycle programs and automating repetitive tasks through scripting or programming.
  • Knowledge of SOC 2, ISO 27001, NIST 800-53, and compliance requirements involving HIPAA, PHI, PII, and PCI.

Nice to have

  • Experience leading projects, initiatives, and resources through direct and indirect leadership.
  • Scripting or programming experience with Java, .NET, HTML, Ruby, PHP, Perl, C#, Python, JavaScript, PowerShell, or Bash.

Culture & Benefits

  • Comprehensive healthcare coverage, disability, life, and long-term care insurance.
  • Multiple 401(k) options and an employer-funded retirement account feature.
  • Paid time off, 12 paid holidays, volunteer time off, and paid family leave.
  • Tuition reimbursement, student loan repayment, and training and certification support.
  • Wellness, caregiver, mental health, financial, and legal support services.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →